Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2018-9551 In CAacDecoder_Init of aacdecoder.cpp, there is a possible out-of-bound write due to a missing bounds check. This could lead to remote code execution… Android Patch available Fix from $1,9502018-12-06 HIGH 7.8 CVE-2018-9553 In MasteringMetadata::Parse of mkvparser.cc there is a possible double free due to an insecure default value. This could lead to remote code executio… Android Patch available Fix from $1,9502018-12-06 HIGH 7.8 CVE-2018-9557 In really_install_package of install.cpp, there is a possible free of arbitrary memory due to uninitialized data. This could lead to local escalation… Android Mitigation only Fix from $1,9502018-12-06 HIGH 7.8 CVE-2018-9558 In rw_t2t_handle_tlv_detect of rw_t2t_ndef.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escala… Android Mitigation only Fix from $1,9502018-12-06 HIGH 7.8 CVE-2018-9559 In persist_set_key and other functions of cryptfs.cpp, there is a possible out-of-bounds write due to an uncaught error. This could lead to local esc… Android Mitigation only Fix from $1,9502018-12-06 HIGH 7.8 CVE-2018-9560 In HID_DevAddRecord of hidd_api.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of pri… Android Mitigation only Fix from $1,9502018-12-06 HIGH 7.8 CVE-2018-9567 On Pixel devices there is a bug causing verified boot to show the same certificate fingerprint despite using different signing keys. This may lead to… Android Mitigation only Fix from $1,9502018-12-06 HIGH 7.5 CVE-2018-9562 In bta_ag_do_disc of bta_ag_sdp.cc, there is a possible out-of-bound read due to an incorrect parameter size. This could lead to remote information d… Android Mitigation only Fix from $1,9502018-12-06 HIGH 7.5 CVE-2018-9565 In readBytes of xltdecwbxml.c, there is a possible out of bounds read due to an integer overflow. This could lead to remote information disclosure wi… Android Mitigation only Fix from $1,9502018-12-06 MEDIUM 5.7 CVE-2018-9566 In process_service_search_rsp of sdp_discovery.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote inf… Android Mitigation only Fix from $1,6002018-12-06 MEDIUM 5.5 CVE-2018-9548 In multiple functions of ContentProvider.java, there is a possible permission bypass due to a missing URI validation. This could lead to local inform… Android Patch available Fix from $1,6002018-12-06 MEDIUM 5.5 CVE-2018-9552 In ihevcd_sao_shift_ctb of ihevcd_sao.c there is a possible out of bounds write due to missing bounds check. This could lead to information disclosur… Android Patch available Fix from $1,6002018-12-06 MEDIUM 5.5 CVE-2018-9554 In dumpExtractors of IMediaExtractor.cp, there is a possible disclosure of recently accessed media files due to a permissions bypass. This could lead… Android Mitigation only Fix from $1,6002018-12-06 HIGH 7.8 CVE-2018-9538 In V4L2SliceVideoDecodeAccelerator::Dequeue of v4l2_slice_video_decode_accelerator.cc, there is a possible out of bounds read of a function pointer d… Android Patch available Fix from $1,9502018-12-06 CRITICAL 9.6 CVE-2018-6152 The implementation of the Page.downloadBehavior backend unconditionally marked downloaded files as safe, regardless of file type in Google Chrome pri… Chrome 66.0.3359.106+ Fix from $2,3002018-12-04 HIGH 8.8 CVE-2018-6086 A double-eviction in the Incognito mode cache that lead to a user-after-free in Networking Disk Cache in Google Chrome prior to 66.0.3359.117 allowed… Chrome 66.0.3359.117+ Fix from $1,9502018-12-04 HIGH 8.8 CVE-2018-6087 A use-after-free in WebAssembly in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code inside a sandbox via a cr… Chrome 66.0.3359.117+ Fix from $1,9502018-12-04 HIGH 8.8 CVE-2018-6088 An iterator-invalidation bug in PDFium in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code inside a sandbox v… Chrome 66.0.3359.117+ Fix from $1,9502018-12-04 HIGH 8.8 CVE-2018-6090 An integer overflow that lead to a heap buffer-overflow in Skia in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrar… Chrome 66.0.3359.117+ Fix from $1,9502018-12-04 HIGH 8.8 CVE-2018-6092EPSS 9% An integer overflow on 32-bit systems in WebAssembly in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code insi… Chrome 66.0.3359.117+ Fix from $1,9502018-12-04 HIGH 8.8 CVE-2018-6094 Inline metadata in GarbageCollection in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to potentially exploit heap corruption via a c… Chrome 66.0.3359.117+ Fix from $1,9502018-12-04 MEDIUM 6.5 CVE-2018-6089 A lack of CORS checks, after a Service Worker redirected to a cross-origin PDF, in Service Worker in Google Chrome prior to 66.0.3359.117 allowed a r… Chrome 66.0.3359.117+ Fix from $1,6002018-12-04 MEDIUM 6.5 CVE-2018-6115 Inappropriate setting of the SEE_MASK_FLAG_NO_UI flag in file downloads in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to potentia… Chrome 66.0.3359.117+ Fix from $1,6002018-12-04 MEDIUM 6.5 CVE-2018-6116 A nullptr dereference in WebAssembly in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to potentially perform out of bounds memory ac… Chrome 66.0.3359.117+ Fix from $1,6002018-12-04 HIGH 8.8 CVE-2018-6085 Re-entry of a destructor in Networking Disk Cache in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code via a c… Chrome 66.0.3359.117+ Fix from $1,9502018-12-04 HIGH 7.5 CVE-2018-15835 Android 1.0 through 9.0 has Insecure Permissions. The Android bug ID is 77286983. Android after 9.0 Fix from $1,9502018-11-30 HIGH 7.8 CVE-2018-11914 In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device… Android Patch available Fix from $1,9502018-11-27 HIGH 7.8 CVE-2018-11918 In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, memory allocated is automatically released… Android Patch available Fix from $1,9502018-11-27 HIGH 7.8 CVE-2018-11919 In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a potential heap overflow and mem… Android Patch available Fix from $1,9502018-11-27 HIGH 7.8 CVE-2018-11943 In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing fastboot flash command, m… Android Patch available Fix from $1,9502018-11-27